Learning the fundamental principles of DevSecOps helps support organizational transformation, increase productivity, reduce risk, and optimize resource utilization. The DevSecOps Foundation course explains how DevOps security practices differ from other approaches, then provides the training needed to implement the changes in your organization. Participants learn the purpose, benefits, concepts, vocabulary, and applications of DevSecOps. Most importantly, students learn how DevSecOps roles fit into a DevOps culture and organization. By the end of the course, participants will understand “security as code” to make the value of security and compliance consumable as a service. No course would be complete without practical application, and this course teaches the steps to integrate developer and operator security programs. These real-life scenarios create tangible insights that participants can leverage upon their return.
4.5
Successfully delivered 49 sessions for over 91 professionals
Learning objectives include a practical understanding of: - The purpose, benefits, concepts, and vocabulary of DevSecOps; - How DevOps security practices differ from other security approaches; - Business-oriented security strategies and best practices; - Understanding and applying data and security science; - Integrating business stakeholders into DevSecOps practices; - Improving communication between Dev, Sec, and Ops teams; - How DevSecOps roles fit into the DevOps culture and organization.
The DevSecOps Foundation course is intended for professionals in the following IT roles: – Anyone involved or interested in understanding DevSecOps automation strategies and practices – Anyone involved in Continuous Delivery toolchain architectures – Compliance Teams – Delivery Staff – DevOps Engineers – IT Managers – Scrum Masters – Site Reliability Engineers – Software Engineers – Testers
Familiarity with IT terminology and IT-related work experience is recommended.
Course Information
Course Code:DEVSECOPSF
Duration:16 Hours
Level:Professional
Language:English
Delivery Mode:Instructor Led Online Live
Need Help Choosing?
Talk to our course advisor for personalized guidance
– Origins of DevOps
– Evolution of DevSecOps
– CALM
– The Three Ways
02
Defining the Cyber Threat Landscape
– What is the cyber threat landscape?
– What is the threat?
– What are we protecting against?
– What are we protecting against and why?
– How do I talk to security?
03
Creating a Responsive DevSecOps Model
– Proving the Model
– Technical, Business, and Human Results
– What is Measured?
– Gating and Threshold
04
Integrating DevSecOps Stakeholders
– The DevSecOps State of Mind
– DevSecOps Stakeholders
– What’s at Stake for Whom?
– Engaging in the DevSecOps Model
05
Defining DevSecOps Best Practices
– Starting Where You Are
– Integrating People, Processes, and Technology and Governance
– DevSecOps Operating Model
– Communication Practices and Boundaries
– Focusing on Outcomes
06
Best Practices for Getting Started
– The Three Ways
– Identifying Target States
– Value Stream Thinking
07
DevOps Pipeline and Continuous Compliance
– The Goal of a DevOps Pipeline
– Why Continuous Compliance Matters
– Archetypes and Reference Architectures
– Coordinating DevOps Pipeline Construction
– Categories, Types, and Examples of DevSecOps Tools
08
Learning Using Outcomes
– Security Training Options
– Training as Policy
– Experiential Learning
– Cross-Skills
– The Collective Body of DevSecOps Knowledge
– Preparing for the DevSecOps Foundation Certification Exam
Send Course Enquiry
Fill out the form and we will get back to you within 24 hours